CVE-2013-0539 Information

Description

An unspecified third-party component in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 uses short session ID values which makes it easier for remote attackers to hijack sessions and consequently obtain sensitive information via a brute-force attack.

Reference

http://www-01.ibm.com/support/docview.wss?uid=swg1IC92007 http://www-01.ibm.com/support/docview.wss?uid=swg21640830 https://exchange.xforce.ibmcloud.com/vulnerabilities/82916

Share on: